CNNVD-202511-2172 Information

CNNVD ID

CNNVD-202511-2172

CVE-2025-65033

  • CNNVD Published: 2025-11-19

Description (Chinese)

Rallly是Luke Vella个人开发者的一款日程安排和协作工具,旨在更轻松地组织活动和会议。 Rallly 4.5.4之前版本存在安全漏洞,该漏洞源于投票管理功能存在授权缺陷,可能导致未经授权的投票暂停或恢复。

Description (English)

Rollly is a calendar and collaboration tool for Luke Vella’s personal developer, which aims to organize events and meetings more easily. There was a security loophole in the previous version of Rollly 4.5.4, which stemmed from a mandate gap in the voting management function that could lead to the suspension or resumption of unauthorized ballots.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

个人开发者

Published

2025-11-19

Last Modified

2026-02-24

References

https://github.com/lukevella/rallly/releases/tag/v4.5.4 https://github.com/lukevella/rallly/security/advisories/GHSA-4p93-v53r-vch3

Patch

https://github.com/lukevella/rallly/releases

Share on: